search for: prynhart

Displaying 9 results from an estimated 9 matches for "prynhart".

Did you mean: rynhart
2008 Jan 02
0
winbind initialization: GetDC got invalid response type 21
...fall back to another method to connect. Could anyone please advise how this problem can be fixed ? I have created debug level 10 logs of winbind (with debug hires timestamp). As the logs are too large for the mailing list (with a 64 kb limit) I have uploaded them here: http://www.massey.ac.nz/~prynhart/log.winbindd_20080103.tgz http://www.massey.ac.nz/~prynhart/log.seat-dc1_20080103.tgz http://www.massey.ac.nz/~prynhart/log.130.123.64.84_20080103.tgz The problem is not the initial connection but when winbind needs to reconnect to the domain after a period of inactivity. NSS will then hang and X...
2008 Jan 01
0
idmap_nss: Default domain not being used
...20 seconds ahead) sid [S-1-5-21-15318837-110984162-118601546-6958] not mapped to an uid [2,1,2683630] Storing response for pid 3021, len 3240 Destroying timed event 99b8b28 "async_request_timeout" Retrieving response for pid 3021 sid2uid returned an error Could not query uid for user IIST\prynhart On the existing (working) server I get: --------------------------------------- idmap_sid_to_uid: sid = [S-1-5-21-15318837-110984162-118601546-6958] Cache entry with key = IDMAP/SID/S-1-5-21-15318837-110984162-118601546-6958 couldn't be found Query backends to map sids->ids SID S-1-5-21-15...
2006 Jul 16
1
Restricting "join domain" account
Is it possible to restrict the account with UID 0 so that it can join the domain but cannot be used for an interactive logon/session ? (I'm wanting something like the "Unable to log you on because of an account restriction" message.) If so, how ? Regards, Patrick
2007 Jul 05
1
Problem with Everyone SID (S-1-1-0)
Hi, I'm running Samba 3.0.25b as a PDC. In log.smbd (at Debug level 10) I have noticed: log.smbd: Could not convert SID S-1-1-0 to gid, ignoring it This problem occurs in function sid_to_gid in lookup_sid.c. An attempt is made for winbind to then resolve the group, but this results in log.winbindd: Could not find domain for sid S-1-1-0 log.winbindd: sid2gid_lookupsid_recv: Could not
2007 Dec 24
0
Changing Domain name and NT trust relationships
Our department is changing its name which means that our Samba 3 domain name has to change accordingly. I have a trust relationship with a foreign Windows domain using "net join rpc" which (I believe) means that Windows is the trusted domain and Samba is the trusting domain. If I change the NetBIOS name, and use 'net setlocalsid' to set the SID of the new domain name to that of
2009 Oct 09
0
How do I get Samba to probe for my ldap module ?
I'm compiling Samba 3.4.1 with ./configure --with-pam --with-ldap --with-shared-modules=idmap_ldap This produces an ldap.so module which I have copied into /lib (and run ldconfig -v). However, following this log.winbind-idmap is not created (only log.smbd and log.winbindd) and Samba does not appear to probe for the ldap module (I have compared my case to another which is creating this log
2007 May 23
1
Samba 3.0.25, trusted domains and winbindd
I have a Samba PDC in a one way trust relationship with a Windows Server 2003 DC such that Samba is the Trusting Domain. With Samba 3.0.23d I always used to leave winbindd running during a restart of smbd/nmbd. With 3.0.25, I have found that the domain "breaks" if I do this. Denote the Samba domain by SAMBA and the (trusted) Windows domain WINDOWS. When the domain "breaks",
2009 Oct 11
1
idmap LDAP branch never populates with Samba 3.4.1 - how do I debug ?
I've followed the instructions at http://wiki.samba.org/index.php/Ldapsam_Editposix which concerns how to setup idmap correctly with Samba > 3.0.25. I have a trusted domain which has been successfully established. However, no SID entries populate beneath ou=idmap and any logon to the trusted domain will result in: netr_LogonSamLogon: user SANDBOX\Administrator has user sid
2009 Nov 02
1
Samba 3.4.2 Trusted Domain Logon gives: "Conflicting domain portions are not supported for NETLOGON calls"
Hi, I'm specifically have a problem with idmap entries not being created in my LDAP backend for trusted domain logons - Local accounts appear to be fine. I have installed the Sernet enterprise packages from: http://ftp.sernet.de/pub/samba/experimental/rhel/5/i386/ I'm preparing the server as follows: 1. smbpasswd -w '<password>' 2. net rpc trustdom establish SANDBOX